The post Trust Wallet Extension Bug Triggers $6M+ Crypto Losses, Forces Emergency Upgrade to Version 2.69 appeared on BitcoinEthereumNews.com. Key Takeaways: TrustThe post Trust Wallet Extension Bug Triggers $6M+ Crypto Losses, Forces Emergency Upgrade to Version 2.69 appeared on BitcoinEthereumNews.com. Key Takeaways: Trust

Trust Wallet Extension Bug Triggers $6M+ Crypto Losses, Forces Emergency Upgrade to Version 2.69

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

Key Takeaways:

  • Trust Wallet confirmed a security incident affecting only Browser Extension version 2.68, prompting an urgent shutdown and upgrade.
  • Reports from on-chain analysts link the flaw to over $6 million in stolen crypto across EVM chains, Solana, and Bitcoin.
  • Mobile users and other extension versions remain unaffected, but the case raises broader concerns about wallet security and supply-chain risks in crypto.

Trust Wallet has issued an urgent warning after detecting a security incident tied to a specific version of its browser extension. The issue has triggered fund losses for some desktop users and forced the company to roll out an immediate fix.

Read More: Trust Wallet Launches New Loyalty Program for TWT, Targeting Mass Web3 Adoption

Trust Wallet Confirms Security Incident in Browser Extension

Trust Wallet disclosed that it identified a security incident affecting Trust Wallet Browser Extension version 2.68 only. The company urged all users running that version to stop using it immediately and upgrade to version 2.69, which is now live on the official Chrome Web Store.

According to Trust Wallet, the incident does not impact:

  • Mobile-only users
  • Desktop users running extension versions other than 2.68

The team emphasized that the wallet’s core infrastructure remains intact and that the problem is isolated to a single desktop extension release.

Trust Wallet also instructed users who have not yet upgraded to avoid opening the extension entirely until version 2.69 is installed. Customer support teams are already engaging with affected users to provide next steps.

Reports of Stolen Funds Spark Community Alarm

The revelation came as the crypto community began to take a closer note of the matter when independent on-chain researcher ZachXBT published a series of user loss stories where users had interacted with the Trust Wallet Chrome extension and had lost their money soon after.

Some of the affected users reported that assets were emptied as soon as they were authorizing transactions in the extension. The first estimates provided to blockchain researchers indicate that they can lose a sum up to $6 million, and hundreds of wallets can be affected.

Some of the reported funds moved across:

  • Ethereum and other EVM-compatible chains
  • Solana
  • Bitcoin

Although Trust Wallet has not ascertained the amount lost, the time scales of the thefts, immediately after version 2.68 was published caused a strong suspicion of the update process.

How the Vulnerability May Have Been Exploited

Possible Supply-Chain Weakness

Even though Trust Wallet has not published complete technical information, multiple security experts believe there is a supply-chain vulnerability added as part of the extension update operation. The malicious code may have been introduced or injected at the build or distribution stage, in this case, the attackers will be able to intercept sensitive wallet activities, like the signing of transactions or authorizing a session.

This theory is in line with user reports of transfer of funds anonymously to an unknown address after wallet authorization without incident. Trust Wallet has also established that it is under investigation and that it will publish more results after the analysis is over.

Read More: Trust Wallet Enables Direct Access to BNB Meme Rush, CZ’s Post Hits 650K Views

Official Response and Mandatory Upgrade Steps

Trust Wallet provided a concise list of guidelines to ensure the security of the users and avoid additional losses. The company emphasized that prior to reopening the extension, these steps were to be undertaken.

Key actions include:

  • Turning off the Trust Wallet extension in Chrome
  • Enabling Developer Mode
  • Forcing a manual update to version 2.69
  • Verifying the installed version number before use

The company once again repeated that users must not download updates through other sites or links but only through the official Chrome Web Store, which the company said was their official store.

What This Incident Reveals About Wallet Security

The Trust Wallet case indicates a systematic danger in crypto: even non-custodial wallets may fall prey to attacks in case their distribution channels are compromised.

Browser extensions continue to be particularly appealing targets since they:

  • Interact directly with private keys and signing requests
  • Operate in environments exposed to phishing and malicious scripts
  • Depend on frequent updates that expand the attack surface

And, in contrast to smart contract exploits, wallet level hacks, in many cases, do not even utilize on-chain protection, and losses cannot be reversed or traced.

This incident is among the larger wallet-related security incidents in recent years, as Trust Wallet has more than 220 million users all over the world. Although the extent may seem to be limited to one version, the reputational effects may reach wider.

Source: https://www.cryptoninjas.net/news/trust-wallet-extension-bug-triggers-6m-crypto-losses-forces-emergency-upgrade-to-version-2-69/

Market Opportunity
Intuition Logo
Intuition Price(TRUST)
$0.06802
$0.06802$0.06802
0.00%
USD
Intuition (TRUST) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Aave DAO to Shut Down 50% of L2s While Doubling Down on GHO

Aave DAO to Shut Down 50% of L2s While Doubling Down on GHO

The post Aave DAO to Shut Down 50% of L2s While Doubling Down on GHO appeared on BitcoinEthereumNews.com. Aave DAO is gearing up for a significant overhaul by shutting down over 50% of underperforming L2 instances. It is also restructuring its governance framework and deploying over $100 million to boost GHO. This could be a pivotal moment that propels Aave back to the forefront of on-chain lending or sparks unprecedented controversy within the DeFi community. Sponsored Sponsored ACI Proposes Shutting Down 50% of L2s The “State of the Union” report by the Aave Chan Initiative (ACI) paints a candid picture. After a turbulent period in the DeFi market and internal challenges, Aave (AAVE) now leads in key metrics: TVL, revenue, market share, and borrowing volume. Aave’s annual revenue of $130 million surpasses the combined cash reserves of its competitors. Tokenomics improvements and the AAVE token buyback program have also contributed to the ecosystem’s growth. Aave global metrics. Source: Aave However, the ACI’s report also highlights several pain points. First, regarding the Layer-2 (L2) strategy. While Aave’s L2 strategy was once a key driver of success, it is no longer fit for purpose. Over half of Aave’s instances on L2s and alt-L1s are not economically viable. Based on year-to-date data, over 86.6% of Aave’s revenue comes from the mainnet, indicating that everything else is a side quest. On this basis, ACI proposes closing underperforming networks. The DAO should invest in key networks with significant differentiators. Second, ACI is pushing for a complete overhaul of the “friendly fork” framework, as most have been unimpressive regarding TVL and revenue. In some cases, attackers have exploited them to Aave’s detriment, as seen with Spark. Sponsored Sponsored “The friendly fork model had a good intention but bad execution where the DAO was too friendly towards these forks, allowing the DAO only little upside,” the report states. Third, the instance model, once a smart…
Share
BitcoinEthereumNews2025/09/18 02:28
Pi Network Community Leadership Program Opens Doors for New GCV Ambassadors

Pi Network Community Leadership Program Opens Doors for New GCV Ambassadors

    The Pi Network community is entering another stage of organizational development as new opportunities emerge for p
Share
Hokanews2026/03/15 22:16
U.S. Congressman Tells Senate to Pass House Crypto Bill or Step Aside – Inside the Clarity Act Standoff

U.S. Congressman Tells Senate to Pass House Crypto Bill or Step Aside – Inside the Clarity Act Standoff

Key Takeaways: Rep. French Hill is pushing the Senate to adopt the House-passed Clarity Act to break the stablecoin deadlock […] The post U.S. Congressman Tells
Share
Coindoo2026/03/15 22:15